Aggregator
2025年离大谱的CVE-2011-10007
伊朗黑客组织 BladedFeline 针对伊拉克和库尔德,部署恶意软件
第一届OpenHarmony CTF专题赛 I 倒计时1天!
Interlock Begins Leaking Kettering Health's Stolen Data
Cybercrime group Interlock has begun publishing some of the 941-gbytes of data the gang claims to have stolen in a disruptive May attack on Kettering Health. The Ohio-based healthcare organization is making IT system restoration progress and cyber enhancements, but is still recovering.
Mind Gets $30M to Boost AI for Endpoint Data Loss Prevention
Backed by Paladin and Crosspoint, Seattle-based data security startup Mind aims to double its team and develop small language models that power endpoint classification. The company is carving a niche in data loss prevention by prioritizing unstructured data and actionable enforcement.
Iranian Espionage Group Caught Spying on Kurdish Officials
An Iranian state espionage group stayed hidden for more than half-a-decade until security researchers spotted it in 2023, researchers said Thursday in a report detailing a growing arsenal of hacking tools it deployed against Kurdish and Iraqi government officials.
Salesforce, Okta Targeted by Telephone-Wielding Hackers
A hacking collective linked to recent British retailer attacks is targeting cloud companies through or voice phishing scams for data theft from European hospitality, retail and education sectors. Hackers impersonate IT support staff.
朝鲜APT组织Lazarus利用新型恶意软件攻击金融与科技行业——每周威胁情报动态第225期 (05.30-06.05)
马斯克川普互喷,特斯拉暴跌!;小鹏 G7 马上预售,25 万「断代领先」;全球首个「满级 QQ」即将诞生|极客早知道
某红队样本分析
谛听 工控安全月报 | 5月
免费蜜罐HFish封印解除!取消限制,节点无上限!
kubestalk: discovers Kubernetes and related infrastructure based attack surface
KubeStalk KubeStalk is a tool to discover Kubernetes and related infrastructure-based attack surfaces from a black-box perspective. This tool is a community version of the tool used to probe for unsecured Kubernetes clusters around...
The post kubestalk: discovers Kubernetes and related infrastructure based attack surface appeared first on Penetration Testing Tools.
SupplyShield: Fortify Your Software Supply Chain
SupplyShield is an open-source application security orchestration framework designed to secure your software supply chain from vulnerabilities, malicious dependencies, and unapproved base images. It provides a comprehensive solution to automate the detection, prioritization, and...
The post SupplyShield: Fortify Your Software Supply Chain appeared first on Penetration Testing Tools.